首页> 外国专利> Broker-Based Authentication System Architecture and Design

Broker-Based Authentication System Architecture and Design

机译:基于代理的身份验证系统架构和设计

摘要

A system and method that grants a token to authenticate a user requesting access to an application in a domain is disclosed. The method includes receiving a response from an identity (ID) provider in a second domain responsive to a first request from a user to access an application provided by an application server in a first domain, the response indicating the authenticity of the user in the second domain, randomly selecting a first key and a second key from a key store, generating a secret by randomly permuting the first key and the second key, generating a signature by signing user information associated with the user using the secret, generating an authentication token including the signature, determining whether the authentication token is valid, and responsive to determining that the authentication token is valid, granting access to the first application to the user based on the authentication token.
机译:公开了一种授予令牌以认证请求访问域中的应用程序的用户的系统和方法。该方法包括:响应于来自用户的,访问第一域中的应用服务器所提供的应用程序的第一请求,从第二域中的身份(ID)提供者接收响应,该响应指示第二域中用户的真实性。域,从密钥存储区中随机选择第一密钥和第二密钥,通过随机排列第一密钥和第二密钥来生成密钥,通过使用密钥对与用户相关联的用户信息进行签名来生成签名,生成包括以下内容的认证令牌:签名,确定认证令牌是否有效,并响应于确定认证令牌有效,基于认证令牌向用户授予对第一应用程序的访问权。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号